Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Julien L

#26989of 53,634
9.3Total CVSS
Vulnerabilities · 2
Medium
2
PT-2007-1152
4.4
2007-08-14
Sysstat · Sysstat · CVE-2007-3852
Name of the Vulnerable Software and Affected Versions: sysstat versions 5.1.2 through 7.1.6 Description: The issue is related to the creation of an insecure script by the init script `sysstat.in` in sysstat, allowing local users to execute arbitrary code. This can potentially lead to unauthorized access to confidential data, disruption of data integrity, and denial of service. Recommendations: For sysstat versions 5.1.2 through 7.1.6, consider restricting access to the `sysstat.in` script until a secure version is available. As a temporary workaround, avoid using the `sysstat.in` script to minimize the risk of exploitation.
PT-2006-2876
4.9
2006-04-20
Avast · Avast! 4 Linux Home Edition · CVE-2006-1892
**Name of the Vulnerable Software and Affected Versions** avast! 4 Linux Home Edition version 1.0.5 **Description** The issue allows local users to modify permissions of arbitrary files via a symlink attack on the /tmp/ avast4 temporary directory. **Recommendations** For avast! 4 Linux Home Edition version 1.0.5, consider restricting access to the /tmp/ avast4 directory to prevent symlink attacks until a patch is available.